Security-X
Forum Security-X => News => Discussion démarrée par: igor51 le décembre 14, 2021, 14:00:22
-
Owowa: the add-on that turns your OWA into a credential stealer and remote access panel
We found a suspicious binary and determined it as an IIS module, aimed at stealing credentials and enabling remote command execution from OWA. We named the malicious module ‘Owowa’,
Source: Owowa: the add-on that turns your OWA into a credential stealer and remote access panel (https://securelist.com/owowa-credential-stealer-and-remote-access/105219/)